US2016246590A1PendingUtilityA1

Priority Status of Security Patches to RASP-Secured Applications

Assignee: YU SOUNILPriority: Feb 20, 2015Filed: Feb 20, 2016Published: Aug 25, 2016
Est. expiryFeb 20, 2035(~8.6 yrs left)· nominal 20-yr term from priority
Inventors:Sounil Yu
G06F 8/656G06F 8/67
38
PatentIndex Score
0
Cited by
0
References
0
Claims

Abstract

Prioritizing software updates in the context of runtime application self-protection (RASP) security. A software update is received for an application software that is running under the control of RASP security, which monitors the application software and works to prohibit one or more runtime operations of the application software. The software update is analyzed to determine whether any runtime operations of the application software that will be affected by the software update are any of the runtime operations prohibited by the RASP security. If the software update affects only runtime operation(s) of the application software that is prohibited, then the priority status of the software update can be downgraded.

Claims

exact text as granted — not AI-modified
1 . A method of determining the priority status of a software update for an application software, the method comprising:
 running an application software under the control of a runtime execution controller, wherein the runtime execution controller analyzes and controls the runtime operation of the application software, and wherein the runtime execution controller prohibits one or more runtime operations of the application software;   receiving a software update of the application software, wherein the software update is designated to have a pre-determined priority status;   analyzing the software update to determine whether any runtime operations of the application software that will be affected by the software update are any of the runtime operations prohibited by the runtime execution controller; and   based on the results of the analysis, assessing the priority status of the software update.   
     
     
         2 . The method of  claim 1 , wherein in the step of assessing the priority status, if the software update affects only those one or more runtime operations of the application software that are prohibited by the runtime execution controller, then downgrading the priority status of the software update. 
     
     
         3 . The method of  claim 2 , the method further comprising scheduling the software update according to the downgraded priority status. 
     
     
         4 . The method of  claim 3 , the method further comprising deploying the software update according to the downgraded priority status. 
     
     
         5 . The method of  claim 2 , wherein the runtime execution controller is a runtime application self-protection (RASP) security. 
     
     
         6 . The method of  claim 5 , wherein in the step of assessing the priority status, if the software update affects only those one or more runtime operations of the application software that are prohibited by the RASP security, then downgrading the priority status of the software update. 
     
     
         7 . The method of  claim 6 , the method further comprising scheduling the software update according to the downgraded priority status, deploying the software update according to the downgraded priority status, or both. 
     
     
         8 . A software product that implements on a computer system, a computer-implemented method for determining the priority status of a software update for an application software that is under the control of a runtime execution controller, wherein the runtime execution controller prohibits one or more runtime operations of the application software, the computer-implemented method comprising the steps of:
 receiving a software update of the application software, wherein the software update is designated to have a pre-determined priority status;   analyzing the software update to determine whether any runtime operations of the application software that will be affected by the software update are any of the runtime operations prohibited by the runtime execution controller; and   if the software update affects only those one or more runtime operations of the application software that are prohibited by the runtime execution controller, then downgrading the priority status of the software update.   
     
     
         9 . The software product of  claim 8 , wherein in the step of assessing the priority status, if the software update affects only those one or more runtime operations of the application software that are prohibited by the runtime execution controller, then downgrading the priority status of the software update. 
     
     
         10 . The software product of  claim 9 , the computer-implemented method further comprising scheduling the software update according to the downgraded priority status, deploying the software update according to the downgraded priority status, or both. 
     
     
         11 . The software product of  claim 8 , wherein the runtime execution controller is a runtime application self-protection (RASP) security. 
     
     
         12 . The software product of  claim 11 , wherein in the step of assessing the priority status, if the software update affects only those one or more runtime operations of the application software that are prohibited by the RASP security, then downgrading the priority status of the software update. 
     
     
         13 . The software product of  claim 12 , the computer-implemented method further comprising scheduling the software update according to the downgraded priority status, deploying the software update according to the downgraded priority status, or both. 
     
     
         14 . A software product that implements on a computer system, a computer-implemented method comprising the steps of:
 continuously monitoring the runtime execution of an application software that is running on the computer system;   during the runtime execution of the application software, blocking a runtime operation of the application software according to a predetermined set of one or more runtime operations of the application software that are deemed to be prohibited;   receiving an update of the application software, wherein the software update is designated to have a pre-determined priority status;   analyzing the software update to determine whether any runtime operations of the application software that will be affected by the software update are any of the runtime operations that are prohibited; and   if the software update affects only those one or more runtime operations of the application software that are prohibited, then downgrading the priority status of the software update.   
     
     
         15 . The software product of  claim 14 , the computer-implemented method further comprising scheduling the software update according to the downgraded priority status. 
     
     
         16 . The software product of  claim 15 , the computer-implemented method further comprising deploying the software update according to the downgraded priority status. 
     
     
         17 . The software product of  claim 14 , wherein the application software is secured by runtime application self-protection (RASP) security. 
     
     
         18 . The software product of  claim 17 , wherein in the step of assessing the priority status, if the software update affects only those one or more runtime operations of the application software that are prohibited by the RASP security, then downgrading the priority status of the software update. 
     
     
         19 . The software product of  claim 18 , the computer-implemented method further comprising scheduling the software update according to the downgraded priority status, deploying the software update according to the downgraded priority status, or both.

Join the waitlist — get patent alerts

Track US2016246590A1 — get alerts on status changes and closely related new filings.

We store only your email — no account needed. See our privacy policy.